Benign Download

Trojan-Downloader.Win32.Suurch.ae

Detects an XORed URL in an executableEncoded content decoded: xor
SHA-256bff82fa7fe57de97285fc10b86e01b590dc67bb3d74d71a83949d52daa873b00
MaleculeMdTh

Evidence

Encoded content decoded: xor 0x36c0–0x37a0
⋯3 more rows
0x36f000000000000000000000000000000000................
0x3700222222223334697575713b2e2e676873""""34iuuq;..ghs
0x371072752f6f64766269686f60786460732fru/odvbiho`xd`s/
0x3720686f676e2e686f6564792f7169713e70hogn.hoedy/qiq>p
0x37303c6c607368606f6f642a6c64606f7222<l`sh`ood*ld`or"
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.